Portfolio
Contact & Links
Education
- Korea University – Sejong Campus
Department of Artificial Intelligence & Cybersecurity, Class of 2023 - Korea University – Seoul Campus
Interdisciplinary Majors
Experiences
- 한국정보보호교육센터 (KISEC) – Start-Up K-Shield Jr. (2024.09.20 ~ 2024.10.20)
- 중부정보보호지원센터 – Web vulnerability inspection practice (2024.10.08)
- KnockOn – KnockOn elite whitehacker bootcamp 3rd TOP7 (2024.11.01 ~ 2025.02.05)
- 한국정보기술연구원 (KITRI) – Next-Generation Security Leader Program WhiteHat School 3rd
Projects
Department of AI & Cybersecurity – File Explorer Development (2024)
Filesystem viewer with basic operations and attention to secure handling.
Department of AI & Cybersecurity – KO-Map (Korea Map Exploration Website) (2024)
Interactive map browsing and data exploration prototype.
KnockOn bootcamp – CRUD, File Upload, Paging, User Account Implementation (2025)
Full-stack training exercises focusing on correctness and security.
WhiteHat School Team 404 Not Found – LLM-integrated Web Application Bug Hunting (2025)
LLM-integrated app bug hunting initiatives and triage process.
Tegenboys SBOMiner – SBOM generator with security code (2025)
Generate SBOM with security annotations to aid audits.
KUality LLM…HMM… (Ongoing)
Building an LLM‑assisted pipeline to automatically find vulnerabilities in WordPress plugins and themes.
CVE
CVE-2025-56526
XSS vulnerability in Kotaemon 0.11.0 allowing arbitrary code execution via crafted PDF
(with Team 404 Not Found 퇴근)
CVE-2025-56527
Plaintext password storage in Kotaemon 0.11.0 in the client’s localStorage
(with Team 404 Not Found 퇴근)
CVE-2025-57298
XSS in Kotaemon 0.11.0
(with Team 404 Not Found 퇴근)
CVE-2025-57164
Flowise through v3.0.4 vulnerable to RCE via unsanitized evaluation of user input in "Supabase RPC Filter"
(with Team 404 Not Found 퇴근)
CVE-2025-57165
Directory Traversal vulnerability in Kotaemon ≤ 0.11.0
(with Team 404 Not Found 퇴근)
CTF
- 2024 충청권 Finals (no preliminaries)
- 2025 충청권 Finals TOP20
- 2025 Information Security Developer Hackathon Finals
- 2025 KUality JR Top5
- 2025 BlackHat Mea Finals (Saudi Arabia)
Awards
- KCTF Jr. 3rd Place
Conference
- 2023 HackTheon Conference
- 2025 Incognito Conference
- 2025 .hack Conference
- 2025 Codegate Conference
- 2025 XKSW Seminar
Languages
- TOEIC 890
Affiliations
- KUality Hacking Club
- KnockOn